SSHD is setup with unsecured cyphers like CBC (see https://www.kb.cert.org/vuls/id/958563). These cyphers should be removed.
There is already a PR filed here: https://github.com/jenkinsci/sshd-module/pull/5. This will also need to be integrated in core hence this ticket.
- is related to
-
JENKINS-33021 trilead ssh MAC and key exchange algorithms severely outdated
- Resolved
- links to